Is "VPN Pool (SSL)" in 'Allowed networks' for DNS?
Cheers - Bob
I have been using Sophos VPN SSL for a while. Same setup as in the "wrap up"; however, recently I noticed I had not specified masquerading rule for "VPN Pool". This has been bothering me, and I read other threads, but I can't seem to get it. I believed all traffic from "remote users" have been going through UTM because when I remote from outside, and I type IP in my browser I get my sophos public IP. I set manual FW rules:
a. remote user ---> my DNS server
b. remote user ---> Internet IPv4
Does it mean that only web traffic goes through "Sophos transparent proxy" but not necessarily all traffic?
I am using UTM 9.509
Thank you,
Martin
Thank you Bob for the confirmation. So, don't forget to add masquerading rule "VPN Pool --> WAN" if you want everything to be tunneled through Sophos SSL VPN.
Also, under "Remote Access - Advanced - Client Options" I set my DNS servers; however, I was wondering weather this is necessary if "VPN Pool" is already listed in the Global Allowed Networks for DNS?
Thanks Bob again - helpful as always!
Martin
Thank you Bob for the confirmation. So, don't forget to add masquerading rule "VPN Pool --> WAN" if you want everything to be tunneled through Sophos SSL VPN.
Also, under "Remote Access - Advanced - Client Options" I set my DNS servers; however, I was wondering weather this is necessary if "VPN Pool" is already listed in the Global Allowed Networks for DNS?
Thanks Bob again - helpful as always!
Martin